Skip to content

chore(deps)(deps): bump actions-rust-lang/setup-rust-toolchain from 1… #87

chore(deps)(deps): bump actions-rust-lang/setup-rust-toolchain from 1…

chore(deps)(deps): bump actions-rust-lang/setup-rust-toolchain from 1… #87

name: verify-hyperd-pin
# HEAD every platform URL for the pinned Hyper release. The archives are the
# PyPI `tableauhyperapi` wheels, so this catches a wheel being yanked and
# catches typos in hyperd-version.toml (version or wheel tag — a wrong tag is
# just a URL that 404s) on PRs that touch the pin.
on:
push:
branches: [main]
paths:
- "hyperdb-bootstrap/hyperd-version.toml"
- "hyperdb-bootstrap/src/**"
- ".github/workflows/verify-hyperd-pin.yml"
- ".github/workflows/npm-build-publish.yml"
- ".github/scripts/verify-npm-hyperd-pin.py"
pull_request:
paths:
- "hyperdb-bootstrap/hyperd-version.toml"
- "hyperdb-bootstrap/src/**"
- ".github/workflows/verify-hyperd-pin.yml"
- ".github/workflows/npm-build-publish.yml"
- ".github/scripts/verify-npm-hyperd-pin.py"
schedule:
# Weekly sanity check — independent of PR traffic.
- cron: "0 12 * * 1"
workflow_dispatch: {}
permissions:
contents: read
jobs:
verify:
runs-on: ubuntu-latest
timeout-minutes: 10
steps:
- uses: actions/checkout@v7
- name: Install build + guard dependencies (mold, python3-yaml)
run: sudo apt-get update -q && sudo apt-get install -y mold python3-yaml
- uses: actions-rust-lang/setup-rust-toolchain@v2
with:
toolchain: stable
cache-key: verify-hyperd-pin
rustflags: ""
- name: Verify pinned release URLs are reachable
run: cargo run --release -p hyperdb-bootstrap --bin hyperdb-bootstrap -- verify
- name: Verify npm-build-publish.yml hyperd pin matches the toml
# The release workflow bundles hyperd into the npm packages from its
# OWN hardcoded version + per-platform wheel tags/sha256s, decoupled
# from the toml.
# 0.7.1 shipped npm with the stale 0.0.25080 engine because only the
# toml was bumped. This guard fails the build if they ever drift again.
run: python3 .github/scripts/verify-npm-hyperd-pin.py